Home page logo

bugtraq logo Bugtraq mailing list archives

From: dittrich () CAC WASHINGTON EDU (Dave Dittrich)
Date: Thu, 22 Oct 1998 10:25:12 -0700

I just got a letter from RedHat asking me to return my CDE software and
uninstall it. Apperantly there are some major security holes which enable
a user to get root access and  "Several exploits have been found that
allow any user on your network to gain full access to your CDE session."
I've searched the web for any info on this and found nothing, sorry if
this is not new news - I just got the letter today.

Its probably the ToolTalk bug:


Dave Dittrich                 Client Services
dittrich () cac washington edu   Computing & Communications
                              University of Washington

<a href="http://www.washington.edu/People/dad/";>
Dave Dittrich / dittrich () cac washington edu [PGP Key]</a>

  By Date           By Thread  

Current thread:
  • Re: CDE Dave Dittrich (Oct 22)
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]